Want to highlight a helpful answer? Upvote!

Did someone help you, or did an answer or User Tip resolve your issue? Upvote by selecting the upvote arrow. Your feedback helps others! Learn more about when to upvote >

Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

Mobile Access Single Server & Proxy

So from the postings, it looks like Snow Leopard Server requires a Proxy server.
My question is: We only have a single server in our organization. What is a recommended proxy server software/hardware/etc. so we could use Mobile Access Server?

Mac OS X (10.5.1), 20" Intel iMac

Posted on Sep 2, 2009 8:01 PM

Reply
17 replies

Sep 4, 2009 7:00 AM in response to Joachim Frey

I still have not found any documentation to definitely say one or two servers. Proxy Servers typically like and behave better as a stand-alone unit, but most can run on the same server. The documentation states that this is a reverse proxy server. Does this mean reverse only?

I should have my Xserve Tuesday, and I will be testing both a single server and dual server configuration. I will also be able to make a phone call to clarify some of these issues.

Sep 4, 2009 2:34 PM in response to Pierreiphone

Full documentation is available in the Network Services Administration guide:
http://manuals.info.apple.com/enUS/NetworkSvcsv10.6.pdf

Chapter 9, "Working with Mobile Access Service", starting on p. 181 contains a richer explanation of the service, the benefits it provides, and when it may be useful to deploy.

The recommended configuration is a minimum of two servers, one acting as the proxy and the second (and others) acting as origin server(s). This configuration minimizes the exposure of the origin server to the Internet and avoids complicated networking setups which can lead to TCP port conflicts. A picture of the setup would help clarify this, so I have requested such for the next revision of the document.

It is important to note that SLS does NOT require a Mobile Access server.

Nov 4, 2009 8:39 PM in response to gsfunkarch

Not only have I not figured out how to do it with 1 server, I can't get it working with 2!!! That document that everyone references is complete crap...it should give concrete examples, with diagrams, etc. One example use case would be the proxy MAS in the DMZ, with public IP, proxying back to an internal server behind the firewall running all the important services (web,mail,cal,address book)...with exact examples of everything from each IP, hostname, port access, etc. Wouldn't be hard to write this, get on the stick Apple, geessh! Another use case could be both servers on the internal network. Another use case could be combining functions and doing it all on 1 server (if this is indeed possible and supported).

I work in IT, as an engineer for a software company, and the answers I seek are not out there in any form today. It is crazy that Snow Leopard has been out for 2 months and the Mobile Access Server for example is a complete black-hole. Come on Apple! If you want people to take you seriously over Microsoft servers, you need to document everything, and have helpful documented examples for people prior to launch. It's pathetic when people are paying 500 bucks after having paid 1000 for Leopard server just 1 year ago.

Nov 12, 2009 4:35 PM in response to jpflager

Below is what I did to get Mobile Access to work with 1 Server.

The link was simply https://subdomain.yourdomain.com

Please keep in mind you have to forward the ports you have setup in Mobile Access if you have a router or firewall in front of your server.

In my case I forwarded ports 443 and the ports i used for Address Book, iCal and Mail in the Server Admin section of Mobile Access.

If you are going to use SSL your certificate has to match your link ( https://subdomain.yourdomain.com) without the the https://

The other thing I had to do to get it working was create an A Record for my sub-domain at the main domain level to forward to the public IP of my server.

Example: A (Host) Subdomain Points to: xxx.xxx.xxx.xxx

Once I completed the above steps I was able access Mobile Access. I did get the certificate warning but this is only due to me using a self-assigned certificate. If you get a Trusted Certificate this should go away.

Hope this helps!

Thanks,

ebrind

Mobile Access Single Server & Proxy

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple ID.